Vulnerability index

Browse CVEs

1,155 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Dir 3040 Firmware CRITICAL 9.8
CVE-2021-21820

A hard-coded password vulnerability exists in the Libcli Test Environment functionality of D-LINK DIR-3040 1.13B03. A specially crafted network reque…

No fix yet
Fix from $2,300 2021-07-16
Dir 3040 Firmware HIGH 7.2
CVE-2021-21819

A code execution vulnerability exists in the Libcli Test Environment functionality of D-LINK DIR-3040 1.13B03. A specially crafted network request ca…

No fix yet
Fix from $1,950 2021-07-16
Dir 3040 Firmware HIGH 7.5
CVE-2021-21817

An information disclosure vulnerability exists in the Zebra IP Routing Manager functionality of D-LINK DIR-3040 1.13B03. A specially crafted network …

No fix yet
Fix from $1,950 2021-07-16
Dir 3040 Firmware HIGH 7.5
CVE-2021-21818

A hard-coded password vulnerability exists in the Zebra IP Routing Manager functionality of D-LINK DIR-3040 1.13B03. A specially crafted network requ…

No fix yet
Fix from $1,950 2021-07-16
Dap 1330 Firmware HIGH 8.8
CVE-2021-34827

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1330 1.13B01 BETA routers. Aut…

Mitigation only
Fix from $1,950 2021-07-15
Dap 1330 Firmware HIGH 8.8
CVE-2021-34828

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1330 1.13B01 BETA routers. Aut…

Mitigation only
Fix from $1,950 2021-07-15
Dap 1330 Firmware HIGH 8.8
CVE-2021-34829

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1330 1.13B01 BETA routers. Aut…

Mitigation only
Fix from $1,950 2021-07-15
Dap 1330 Firmware HIGH 8.8
CVE-2021-34830

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1330 1.13B01 BETA routers. Aut…

Mitigation only
Fix from $1,950 2021-07-15
Dsl 2888a Firmware CRITICAL 9.8
CVE-2021-33346

There is an arbitrary password modification vulnerability in a D-LINK DSL-2888A router product. An attacker can use this vulnerability to modify the …

No fix yet
Fix from $2,300 2021-06-24
Dir 2640 Us Firmware HIGH 8.1
CVE-2021-34203

D-Link DIR-2640-US 1.01B04 is vulnerable to Incorrect Access Control. Router ac2600 (dir-2640-us), when setting PPPoE, will start quagga process in t…

Mitigation only
Fix from $1,950 2021-06-16
Dir 2640 Us Firmware HIGH 7.1
CVE-2021-34201

D-Link DIR-2640-US 1.01B04 is vulnerable to Buffer Overflow. There are multiple out-of-bounds vulnerabilities in some processes of D-Link AC2600(DIR-…

No fix yet
Fix from $1,950 2021-06-16
Dir 2640 Us Firmware MEDIUM 6.8
CVE-2021-34204

D-Link DIR-2640-US 1.01B04 is affected by Insufficiently Protected Credentials. D-Link AC2600(DIR-2640) stores the device system account password in …

No fix yet
Fix from $1,600 2021-06-16
Dir 2640 Us Firmware HIGH 7.8
CVE-2021-34202

There are multiple out-of-bounds vulnerabilities in some processes of D-Link AC2600(DIR-2640) 1.01B04. Ordinary permissions can be elevated to admini…

No fix yet
Fix from $1,950 2021-06-16
Dir 868l Firmware HIGH 7.5
CVE-2020-29321

The D-Link router DIR-868L 3.01 is vulnerable to credentials disclosure in telnet service through decompilation of firmware, that allows an unauthent…

No fix yet
Fix from $1,950 2021-06-04
Dir 880l Firmware HIGH 7.5
CVE-2020-29322

The D-Link router DIR-880L 1.07 is vulnerable to credentials disclosure in telnet service through decompilation of firmware, that allows an unauthent…

No fix yet
Fix from $1,950 2021-06-04
Dir 885l Mfc Firmware HIGH 7.5
CVE-2020-29323

The D-link router DIR-885L-MFC 1.15b02, v1.21b05 is vulnerable to credentials disclosure in telnet service through decompilation of firmware, that al…

No fix yet
Fix from $1,950 2021-06-04
Dir 895l Mfc Firmware HIGH 7.5
CVE-2020-29324

The DLink Router DIR-895L MFC v1.21b05 is vulnerable to credentials disclosure in telnet service through decompilation of firmware, that allows an un…

No fix yet
Fix from $1,950 2021-06-04
Dir 816 Firmware CRITICAL 9.8
CVE-2021-27113

An issue was discovered in D-Link DIR-816 A2 1.10 B05 devices. An HTTP request parameter is used in command string construction within the handler fu…

No fix yet
Fix from $2,300 2021-04-14
Dir 816 Firmware CRITICAL 9.8
CVE-2021-27114EPSS 25%

An issue was discovered in D-Link DIR-816 A2 1.10 B05 devices. Within the handler function of the /goform/addassignment route, a very long text entry…

No fix yet
Fix from $2,300 2021-04-14
Dir 846 Firmware CRITICAL 9.8
CVE-2020-27600EPSS 14%

HNAP1/control/SetMasterWLanSettings.php in D-Link D-Link Router DIR-846 DIR-846 A1_100.26 allows remote attackers to execute arbitrary commands via s…

No fix yet
Fix from $2,300 2021-04-02
Dir 816 Firmware CRITICAL 9.8
CVE-2021-26810

D-link DIR-816 A2 v1.10 is affected by a remote code injection vulnerability. An HTTP request parameter can be used in command string construction in…

No fix yet
Fix from $2,300 2021-03-30
Dva 2800 Firmware HIGH 8.8
CVE-2020-27862

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DVA-2800 and DSL-2888A routers. Au…

Mitigation only
Fix from $1,950 2021-02-12
Dva 2800 Firmware MEDIUM 6.5
CVE-2020-27863

This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of D-Link DVA-2800 and DSL-2888A rou…

Mitigation only
Fix from $1,600 2021-02-12
Dsr 250 Firmware CRITICAL 9.8
CVE-2020-18568EPSS 15%

The D-Link DSR-250 (3.14) DSR-1000N (2.11B201) UPnP service contains a command injection vulnerability, which can cause remote command execution.

No fix yet
Fix from $2,300 2021-02-02
Dns 320 Firmware CRITICAL 9.8
CVE-2020-25506 KEVEPSS 100%

D-Link DNS-320 FW v2.06B01 Revision Ax is affected by command injection in the system_mgr.cgi component, which can lead to remote arbitrary code exec…

Mitigation only
Fix from $2,300 2021-02-02
Dcs 5220 Firmware HIGH 8.0
CVE-2021-3182

D-Link DCS-5220 devices have a buffer overflow. NOTE: This vulnerability only affects products that are no longer supported by the maintainer

No fix yet
Fix from $1,950 2021-01-19
Dsl 2888a Firmware HIGH 7.5
CVE-2020-24577EPSS 19%

An issue was discovered on D-Link DSL-2888A devices with firmware prior to AU_2.31_V1.1.47ae55. The One Touch application discloses sensitive informa…

No fix yet
Fix from $1,950 2021-01-08
Dsl2888a Firmware HIGH 8.8
CVE-2020-24579EPSS 10%

An issue was discovered on D-Link DSL-2888A devices with firmware prior to AU_2.31_V1.1.47ae55. An unauthenticated attacker could bypass authenticati…

No fix yet
Fix from $1,950 2020-12-22
Dsl2888a Firmware HIGH 8.0
CVE-2020-24581EPSS 14%

An issue was discovered on D-Link DSL-2888A devices with firmware prior to AU_2.31_V1.1.47ae55. It contains an execute_cmd.cgi feature (that is not r…

No fix yet
Fix from $1,950 2020-12-22
Dsl2888a Firmware HIGH 7.5
CVE-2020-24580

An issue was discovered on D-Link DSL-2888A devices with firmware prior to AU_2.31_V1.1.47ae55. Lack of authentication functionality allows an attack…

No fix yet
Fix from $1,950 2020-12-22